A flaw was found in the Linux kernel's implementation of Pressure Stall Information. While the feature is disabled by de
A flaw in the Linux kernel's implementation of RDMA communications manager listener code allowed an attacker with local
A flaw use after free in the Linux kernel NILFS file system was found in the way user triggers function security_inode_a
Use After Free in GitHub repository vim/vim prior to 9.0.0260.
Use After Free in GitHub repository vim/vim prior to 9.0.0286.
Foxit PDF Reader before 11.1 and PDF Editor before 11.1, and PhantomPDF before 10.1.6, allow attackers to trigger a use-
Foxit PDF Reader before 11.1 and PDF Editor before 11.1, and PhantomPDF before 10.1.6, allow attackers to trigger a use-
Foxit PDF Reader before 11.1 and PDF Editor before 11.1, and PhantomPDF before 10.1.6, allow attackers to trigger a use-
Foxit PDF Reader before 11.1 and PDF Editor before 11.1, and PhantomPDF before 10.1.6, allow attackers to trigger a use-
Foxit PDF Reader before 11.1 and PDF Editor before 11.1, and PhantomPDF before 10.1.6, allow attackers to trigger a use-
Foxit PDF Reader before 11.1 and PDF Editor before 11.1, and PhantomPDF before 10.1.6, allow attackers to trigger a use-
Use After Free in GitHub repository vim/vim prior to 9.0.0322.
A flaw was found in the Linux kernel’s implementation of IO-URING. This flaw allows an attacker with local executable pe
Measuresoft ScadaPro Server (All Versions) allows use after free while processing a specific project file.
Use After Free in GitHub repository vim/vim prior to 9.0.0360.
Use After Free in GitHub repository vim/vim prior to 9.0.0389.
Opening a specially crafted file could cause the affected product to fail to release its memory reference potentially re
A flaw was found in the Linux kernel implementation of proxied virtualized TPM devices. On a system where virtualized TP
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Ansys SpaceClaim 2022
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Ansys SpaceClaim 2022
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Ansys SpaceClaim 2022
Memory corruption in kernel due to use after free issue in Snapdragon Compute, Snapdragon Connectivity, Snapdragon Indus
There exists a use-after-free in io_uring in the Linux kernel. Signalfd_poll() and binder_poll() use a waitqueue whose l
Adobe Photoshop versions 22.5.8 (and earlier) and 23.4.2 (and earlier) are affected by a Use After Free vulnerability th
Use After Free in GitHub repository vim/vim prior to 9.0.0490.
Adobe Bridge version 12.0.2 (and earlier) and 11.1.3 (and earlier) are affected by a Use After Free vulnerability that c
A flaw use after free in the Linux kernel video4linux driver was found in the way user triggers em28xx_usb_probe() for t
Use After Free in GitHub repository vim/vim prior to 9.0.0530.
Use After Free in GitHub repository vim/vim prior to 9.0.0579.
There is a use-after-free issue in JBIG2Stream::close() located in JBIG2Stream.cc in Xpdf 4.04. It can be triggered by s
Use After Free in GitHub repository vim/vim prior to 9.0.0614.
A maliciously crafted PNG file in Autodesk Image Processing component may be used to attempt to free an object that has
In binder_inc_ref_for_node of binder.c, there is a possible way to corrupt memory due to a use after free. This could le
Various refcounting bugs in the multi-BSS handling in the mac80211 stack in the Linux kernel 5.1 through 5.19.x before 5
A user may be tricked into opening a malicious FBX file which may exploit a use-after-free vulnerability in Autodesk FBX
Adobe Dimension versions 3.4.5 is affected by a Use After Free vulnerability that could result in arbitrary code executi
Adobe Dimension versions 3.4.5 is affected by a Use After Free vulnerability that could result in arbitrary code executi
Adobe Dimension versions 3.4.5 is affected by a Use After Free vulnerability that could result in arbitrary code executi
Adobe Dimension versions 3.4.5 is affected by a Use After Free vulnerability that could result in arbitrary code executi
Adobe Dimension versions 3.4.5 is affected by a Use After Free vulnerability that could result in arbitrary code executi
Adobe Dimension versions 3.4.5 is affected by a Use After Free vulnerability that could result in arbitrary code executi
A use after free issue was addressed with improved memory management. This issue is fixed in tvOS 16, iOS 16, watchOS 9.
A use after free issue was addressed with improved memory management. This issue is fixed in macOS Big Sur 11.7, macOS V
A vulnerability has been identified in JT2Go (All versions < V14.1.0.4), Teamcenter Visualization V13.2 (All versions <
A use-after-free vulnerability exists in the JavaScript engine of Foxit Software's PDF Reader, version 12.0.1.12430. By
A use-after-free vulnerability exists in the JavaScript engine of Foxit Software's PDF Reader, version 12.0.1.12430. A s
A use-after-free vulnerability exists in the JavaScript engine of Foxit Software's PDF Reader, version 12.0.1.12430. By
A use-after-free vulnerability exists in the JavaScript engine of Foxit Software's PDF Reader, version 12.0.1.12430. A s
Use After Free vulnerability in Linux Kernel allows Privilege Escalation. An improper Update of Reference Count in io_ur
GPAC v2.1-DEV-rev478-g696e6f868-master was discovered to contain a heap use-after-free via the Q_IsTypeOn function at /g
Frequently Asked Questions
What is CWE-416?
CWE-416 (Use After Free) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-416?
There are 9,940 CVE records associated with CWE-416 in our database. Of these, 834 are critical severity, 5751 are high severity, and 1124 are medium severity.
How can I protect against CWE-416 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-416 using AI-powered security agents.
Detect CWE-416 Vulnerabilities
CyberStrike's AI agents automatically detect use after free vulnerabilities across your infrastructure.
Get Started